CVE-2025-55626
Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.
An Insecure Direct Object Reference (IDOR) vulnerability in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allows unauthorized attackers to access the Admin-only settings and edit the session storage.
Published 2025-08-22. Last modified 2026-06-17.